Information Technology Security Manager
Information security analyst job in Chesapeake, VA
In cybersecurity, we help keep our diverse environment from design, merchandizing, supply chain, eCommerce, and enterprise secure in a dynamic space. The IT Security team is looking for a passionate cybersecurity leader who wants to make an impact in multiple environments. Family Dollar is looking for a detailed and results oriented Security Engineering Manager leader who will be responsible for overseeing and managing the security of its information systems and data. This person will lead a team of cybersecurity professionals and work closely with other departments to protect the organization's digital assets, data and systems from cyber threats and breaches. This role is critical to the strategic and tactical success of Family Dollar's cybersecurity program. As the leader of this team, you will be responsible for providing strategic and operational direction of our security engineering solutions and cybersecurity tool stack.
Under the direction of Director, Cybersecurity, the Security Engineering Manager takes a lead role in ensuring the security of all protected information collected, used, maintained, or released by Family Dollar. This role plays a vital role in ensuring the confidentiality, integrity and availability of our data. It is a critical role in the face of an ever-evolving landscape of cyber threats and attacks.
Principal Duties and Responsibilities
Partnering with teams across the organization to influence security by design to help drive overall direction of our technical security solutions.
Accountable for end-to-end life cycle of our security tool portfolio (e.g., Firewalls, IDS/IPS, WAF, IAM, DLP, SIEM, Proxy, DDoS, Antimalware, Cloud network infrastructure technologies)
Ensuring the hardening of our infrastructure (e.g., authentication, MFA, perimeter edge.)
Driving standards and expectations of secure practices across the organization such as data security, defense-in-depth, SASE, Zero Trust etc.
Collaborating with senior leadership to assess and understand strategic initiatives to ensure IT Security support.
Act as a subject matter expert to provide advisory guidance to other teams.
Interface and influence leaders at varying levels and roles within the company to drive security ownership.
Keeping up to date with the security landscape to ensure our teams are providing strong defenses.
Strong decision-making, problem-solving abilities, and leadership abilities to manage multiple, often conflicting priorities to successful completion.
Demonstrate commitment to high standards of ethics and values, regulatory compliance, and business integrity.
Excellent management skills to drive the personal development of the team and individuals.
Maintain all security tools and technology.
In charge of security systems, such as firewalls, data protection controls, patching.
Ensures that project/department milestones/goals are met and adhering to approved budgets.
Has full authority for personnel actions.
Evaluates risks and improves Family Dollar's security positioning through process improvement, policy, automation, and the continuous evolution of capabilities.
Implements processes to automate and continuously monitor information security controls, exceptions, risks, testing.
Develops reporting metrics, dashboards, and evidence artifacts.
Schedules regular testing of effectiveness and efficiency of controls within area of ownership.
Remains current on best practices and technological advancements and acts as the technical resource for information security.
Minimum Requirements/Qualifications
5+ years of experience in cybersecurity.
2+ years as a security leader of a team (e.g., Incident Response, Engineering team).
5+ years' experience leveraging and implementing cybersecurity frameworks such as, MITRE ATTACK, MITRE D3FEND, OWASP Top 10, CIS Controls, NIST CSF, NIST 800-53, etc.
10+ years of advanced IT skills with high level of information security experience and expertise.
Knowledge of securing network technologies, client, and server operating systems.
Ability to develop and maintain security baselines based on best practices and industry standards.
Experience responding to, analyzing, problem solving, and communicating information security incidents.
6+ years of planning and managing security projects.
Excellent interpersonal, communication, and presentation skills, including formal report writing experience.
Understanding of common security standards and regulations relating to a retail environment (e.g., PCI DSS, NIST CSF, ISO2700x, etc.)
Team leadership and management. Foster a culture of security awareness and compliance within the organization.
Ability to work in agile and waterfall frameworks as needed
1-3 years as a technical leader / supervisor with strong analytical and problem-solving skills identifying risks and championing that change.
5+ years of experience interfacing with varying levels of leadership and roles within a company, influencing security change.
Minimum of 5 years' experience with modern security tool stacks
Network security tools (e.g., WAF, Proxies, IDS/IPS, VPN, Taps, Firewalls)
Endpoint security tools (e.g., AV, EDR, Application Control, PKI)
Security Operations tools (e.g., SIEM)
Authentication and authorization tools (e.g., PAM, SSO, SAML, IAM, MFA)
Data Security tools (e.g., eDiscovery, DSPM)
Cloud (e.g., CSPM) and other implications of cybersecurity
Strong knowledge of cybersecurity concepts
Secure protection and detection techniques
Application security
Vulnerability management
Exploitation techniques
Incident response
Data privacy and encryption
Endpoint platforms (Windows, Linux & Mac, iOS/Android)
Desired Qualifications
Bachelors in Information Technology or other four-year related degree
Cyber Security Threat Analyst
Information security analyst job in Newport News, VA
Who We Are:
Headquartered in Washington, DC, Versar Global Solutions provides full mission lifecycle solutions for challenges faced by our government and commercial Customers in the natural, built, and digital environments. With nearly 2,000 team members around the world, and a rich legacy spanning more than 70 years, Versar Global Solutions delivers a broad array of planning, analysis and risk management solutions, project and program management, operations and maintenance services, and information technology applications for environmental management and remediation projects, mission critical facilities and installations, and in support of readiness and contingency operations.
Who You Are:
Are you a talented and innovative cyber security specialist that wants to make a difference in the world? Join us as a Cyber Security Threat Analyst and lead the charge in developing, implementing, and supporting cutting-edge geospatial technologies. In this pivotal role, you will collaborate with our dynamic Geospatial & Digital Solutions (GDS) Market Sector team to support diverse IR&D and customer-focused projects within a multi-disciplinary organization to achieve specific goals and objectives. The ideal candidate will focus on leveraging AI solutions and digital tools to improve efficiency, scalability, and the overall digital experience for both internal teams and external customers.
Reporting directly to our Director of our Digital HUB Team, we want to leverage your expertise in securing customer-facing products. The ideal candidate will focus on threat modeling, security assessments, protocol validation, and ensuring compliance with government certifications and policies for government and private systems and protocols.
What You'll Do:
Perform comprehensive threat modeling and risk assessments for customer products and internal systems.
Assess API security, OAuth/SAML, tenant isolation, or cloud-native security
Validate security protocols to ensure compliance with industry standards and best practices.
Conduct walkthroughs and audits of security policies and procedures.
Collaborate with cross-functional teams to implement mitigation strategies addressing identified risks.
Support and lead efforts for government and industry security certifications.
Monitor emerging cyber threats and vulnerabilities, analyzing their potential impact on organizational assets.
Develop detailed reports documenting findings, risk assessments, and remediation plans.
Assist in designing and maintaining incident response plans and security controls.
What You'll Bring:
Certifications such as CISSP, CISM, CEH, or equivalent.
Minimum 3 years of experience in threat modeling, vulnerability assessments, and protocol validation for large systems.
Strong knowledge of cybersecurity frameworks and government certification requirements.
Experience with API security, OAuth/SAML, tenant isolation, and cloud-native security concepts.
Experience reviewing and improving security policies, procedures, and compliance documentation for geospatial systems.
Familiarity with security protocols, network security, and cryptographic principles.
Excellent analytical and problem-solving skills.
Ability to communicate complex security concepts clearly to technical and non-technical stakeholders.
Familiarity working within government or regulated environments.
Experience supporting audits and managing compliance documentation.
Excellent analytical and problem-solving skills.
Strong communication and interpersonal skills.
Must be proficient in English, both written and verbal, to ensure effective communication and collaboration.
Must be able to obtain and maintain a Secret Security Clearance.
Successful results of preemployment screenings, including federal background check, MVR, and drug screen.
Comply with company drug and alcohol policy.
Be authorized to work in the US or will be authorized by the successful candidate's start date.
Preferred Skills & Certifications:
Strong Project Management Skills: Ability to plan, organize, and manage multiple projects simultaneously, ensuring they are completed on time and within budget.
Digital and Technology Expertise: Understanding of various digital technologies, platforms, and tools relevant to the program's objectives.
Communication and Interpersonal Skills: Ability to communicate effectively with diverse stakeholders, build relationships, and influence decision-making.
Problem-Solving and Analytical Skills: Ability to identify and solve complex problems, analyze data, and make data-driven decisions.
Leadership and Team Management Skills: Ability to lead and motivate teams, build consensus, and drive collaboration.
Customer Knowledge: Familiarity with Federal Market and technical approaches related to next-generation cloud, network, and cybersecurity technologies.
Location Requirements
The position will primarily work onsite at the Newport News, VA office location.
EEO Commitment
Versar Global Solutions is committed to providing equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information, sexual orientation, gender identity, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state, and local laws.
Versar Global Solutions complies with applicable state and local laws governing non-discrimination in employment in every location in which the company operates. This policy applies to all terms and conditions of employment, including hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
Versar Global Solutions expressly prohibits any form of unlawful employee harassment based on race, color, religion, sex, national origin, age, disability, genetic information, sexual orientation, gender identity, marital status, amnesty, or status as a covered veteran. Improper interference with the ability of Versar Global Solutions employees to perform their job duties is not tolerated.
#LI-WJ1
Auto-ApplyInformation Security Specialist (Regional)
Information security analyst job in Newport News, VA
The Information Security Specialist is responsible for Information Security within the Americas region. Duties include designing, implementing, and improving security controls, incident response strategies, and risk mitigation measures to safeguard IT systems and sensitive data.
* This position is office-based in Newport News, VA.*
Responsibilities
* Designs and implements security solutions to protect IT infrastructure
* Develops and enforces security policies, standards, and risk mitigation strategies
* Conducts penetration testing, vulnerability scanning, and security audits
* Investigates and responds to security incidents, performing forensic analysis
* Ensures compliance with regulatory frameworks (GDPR, NIS2, ISO 27001)
* Evaluates and integrates new security tools and technologies
* Automates security processes and threat mitigation where possible
* Works with IT, DevOps, and risk management teams
* Engages with regulatory bodies and compliance auditors
* Coordinates with external cybersecurity partner
Competencies
* Education and Experience: Bachelor's degree in Cybersecurity, Computer Science, Information Technology or related discipline and 4 years of IT experience focused on Information Security relevant technologies; or combination of equivalent education, training, certification, and 8 years relevant experience. Information Security certifications (such as CISSP: Certified Information Systems Security Professional; CEH: Certified Ethical Hacker; CISM: Certified Information Security Manager; GIAC: Global Information Assurance Certification) can be accepted in lieu of bachelor's degree. Security+ preferred.
* Knowledge of Information Security engineering principles (least privilege, zero trust)
* Knowledge of IAM solutions (Active Directory, Okta, SSO, MFA)
* Knowledge of threat modeling and risk analysis techniques
* Knowledge of Information Security automation tools (Ansible, PowerShell, Python)
* Knowledge of Compliance frameworks (NIST CSF, CIS Controls, ISO 27001)
* Skilled in designing and implementing security architectures
* Skilled in automating security processes and threat mitigation
* Skilled in managing security operations and improving response efficiency
* Ability to work independently and take ownership of security initiatives
* Strong problem-solving skills in high-pressure situations
* Excellent teamwork and collaboration in cross-functional security projects
* Clear and concise communication to bridge technical and non-technical audiences
* Travel domestically and internationally occasionally.
* Ability to obtain and maintain a valid driver license and passport.
Our Offer
An interesting and ambitious role in a successful international company. We offer a secure work environment with a comprehensive benefits package that includes major medical, dental and vision insurance, 401K plan with company match, paid vacation and personal days and competitive salary.
Referral Bonus: Tier III
Have we awoken your interest? Then we look forward to receiving your online application. If you have any questions, please contact Thomas Steele.
Liebherr-America, Inc. and its US affiliates are Equal Opportunity Employers. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law.
If you are a California resident, please visit Liebherr USA, Co. Privacy Statement for more information regarding how Liebherr-America, Inc. and its US affiliates collect and process your personal information.
One Passion. Many Opportunities.
Information Security Analyst (NQV)
Information security analyst job in Portsmouth, VA
Seeking a full-time, experienced Navy Qualified Validator (NQV) to provide advanced Cybersecurity and Risk Management Framework (RMF) support for Navy systems and networks. The ideal candidate will bring deep expertise in Cybersecurity Assessment & Authorization (CS/A&A) processes, vulnerability assessments, and Navy-specific compliance standards. This role requires a strong mix of technical, analytical, and documentation skills to ensure Navy systems achieve and maintain Authorization to Operate (ATO) in compliance with DoD and DON policies.
Duties & Responsibilities
Perform Cybersecurity Assessment & Authorization (CS/A&A) analysis, ensuring compliance with DoDI 8510.01 (RMF) and Navy requirements.
Conduct risk assessments, risk mitigation analysis, and vulnerability analysis across systems, applications, and networks.
Provide NQV validation support for Navy systems, ensuring compliance with DoN A&A and RMF standards.
Execute Security Test and Evaluation (ST&E) activities, including analysis, reporting, and risk recommendations.
Manage and process Security Technical Implementation Guides (STIGs) using automated tools (e.g., SCAP, STIGMAN, eMASSter).
Maintain and update system records in Enterprise Mission Assurance Support Services (eMASS) and other RMF repositories.
Develop and execute Standard Operating Procedures (SOPs), CONOPs, Business Rules, and Contingency Plans for Navy systems.
Provide expert firewall policy and ports/protocols configuration support.
Develop and maintain hardware/software inventories, network boundary diagrams, and technical documentation.
Upload vulnerability scan data into VRAM and maintain baseline system configuration compliance.
Provide executive-level reporting, including Plans of Action and Milestones (POA&M) and risk mitigation recommendations.
Advise leadership on compliance with Federal, DoD, and DON cybersecurity laws, directives, and policies.
Navy Qualified Validator (NQV) credential with registration.
Cybersecurity / RMF requirements (DoDI 8510.01).
System/network vulnerability analysis and mitigation strategies.
Security Test & Evaluation (ST&E) processes and reporting.
STIG processing and automated compliance tools (SCAP, Evaluate STIG, STIGMAN, EMASSter).
RMF documentation and repositories, especially eMASS.
Contingency planning, training, and execution.
Firewall policy configuration and ports/protocols management.
VRAM vulnerability baseline uploads and configuration tracking.
Expert-level knowledge of DoD/DON cybersecurity directives (FISMA, DoDI 8500.01, SECNAV 5239, NIST SP 800 series, etc.).
Knowledge of OPNAVINST N9210.3 for safeguarding Naval Nuclear Propulsion Information.
This job description in no way states or implies that these are the only duties to be performed by this employee. He or she will be required to follow any other instructions and to perform any other duties requested by his or her supervisor
Education & Experience Requirements
Must have a minimum of 4 years' related experience
Bachelor's degree in an IT-related discipline (e.g., Computer Science, Information Technology, Software Engineering) or Level II Certification (Security+ or better) AND four (4) years of relevant experience as described above.
Certifications such as Microsoft Certified: SharePoint Server Hybrid Administrator Associate, Microsoft Certified: Windows Server Administrator, and CompTIA Security+ are desired.
Active Navy Qualified Validator (NQV) registration
SECURITY CLEARANCE REQUIREMENTS: Secret
Skill & Certification Requirements
Active Navy Qualified Validator (NQV) registration.
Fully qualified per DoD 8570.01M requirements (IAT Level II or IAM Level II).
Demonstrated experience with eMASS, STIG processing tools, and vulnerability assessment tools.
Strong communication skills with ability to produce executive-level reports, POA&Ms, and project documentation.
Direct experience certifying and accrediting DON information systems, networks, and Platform IT.
Proven ability to advise Navy leadership on cybersecurity strategies and risk management.
Strong technical writing and presentation skills for producing high-quality deliverables.
Institutional knowledge of Navy cybersecurity mission-critical procedures, systems, and processes.
Must be proficient in the use of Microsoft Office Applications (Outlook, Word, Excel, PowerPoint and Access), and other standard (Customer specified) applications.
Position requires sitting, for long periods of time. (Sedentary Work)
Most duties require extended use of a keyboard and computer monitor
May require lifting of 20-50 lbs
LCI is an Equal Opportunity Employer Veteran/Disabled
Leader Communications is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability. If you'd like to view a copy of the company's affirmative action plan or policy statement, please email **************
Auto-ApplySOC Cyber Analyst (Journeyman or Junior, Norfolk, VA)
Information security analyst job in Norfolk, VA
Akira Technologies is seeking a Cyber Analyst team member who is responsible for the analysis of all technology devices which may include Operational Technology (OT) and Industrial Control Systems (ICS) as well as on-premises and cloud enterprise networks. This includes analysis of device communication, forensic analysis of Windows or Linux systems and servers, timeline analysis of activity on these endpoints, user permission and authentication audits, log analysis, and malware identification/triage.
This role supports a government client in the following locations five days a week: Norfolk, VA. Active Secret clearance or higher is also required for this role.
An ideal candidate for this position will be a proactive self-starter who has experience with system administration, Windows and Linux operating systems (OS) mechanics including filesystem structures, disk and memory forensics, cyber aware Operational Technology or Control Systems operators, commonly used mechanisms for maintaining security persistence, privilege escalation, and lateral data movement, operating system log analysis, and triaging suspicious file artifacts for unusual behavior. This role requires a familiarity with what routine OS activities and common software/user behavior looks like in the context of forensic artifacts or timelines.
Analysts should also be familiar with common categories and formats of host-based indicators of compromise (IOCs) and how/where they can be leveraged to identify known-bad files/activity on an endpoint. Candidate will utilize the Cyber Kill Chain and synthesize the entire attack life cycle along with creating detailed reports on how impacts may or have occurred.
Job Responsibilities
Support SOC team in operating and performing duties in a Security Operations Center (SOC) to provide a secure environment that facilitates monitoring, incident response, malware analysis, and threat hunting activities.
Develop and utilize analytics on the security information and event management (SIEM) platform to monitor for security alerts and coordinate vulnerability assessments and artifact collection across servers and network devices.
Asses Security Technical Implementation Guides (STIGs) compliance and completion.
Utilize asset mapping tools to verify connected inventory.
Handle Information Assurance Vulnerability Management (IVAM) notifications.
Evaluate network structures and device configurations for security risks, offering recommendations based on best practices, and gather data to identify and respond to network intrusions.
Analyze network traffic and system logs to identify malicious activities, vulnerabilities exploited, and methods used, and develop processes to enhance SOC response and efficiency.
Conduct comprehensive technical analyses of computer evidence, research and integrate new security tools into the SOC, and synthesize findings into reports for both technical and non-technical audiences.
Job Qualifications
Active Secret security clearance or higher.
At least 3 years, (Journeyman), or applicable 1 to 2 years (Junior) of experience in security operations, demonstrating analytical duties and preforming host or network security analysis.
Proficient in analyzing cyber-attacks, with a deep understanding of attack classifications, stages, system/application vulnerabilities, and compliance with Department of Defense (DoD) policies and procedures.
Applied knowledge of network topologies, protocols (e.g., TCP/IP, ICMP, HTTP/S, DNS, SSH, SMTP, SMB), and experience with tools like Palo Alto, Elastic SIEM, Cribl, Splunk, VMware, Security Center.
Capable of attack reconstruction based on network traffic, integrating Threat Intelligence, and familiar with MITRE ATT&CK framework, with the ability to collaborate effectively across multiple locations.
Preferred Skill Sets
Knowledge of Operational Technology (OT) or Industrial Control Systems (ICS)
Strong analytical and troubleshooting skills
Able to provide expert content development in Splunk Enterprise Security using tstats and data models
Understands how to utilize knowledge of latest threats and attack vectors to develop correlation rules for continuous monitoring on various security appliances
Experience in other tools and protocols as applicable such as Nessus, Endgame, CrowdStrike, Gray Noise, Shodan, Bacnet, MODBus, SCADA systems, and PCAP
Review logs to determine if relevant data is present to accelerate against data models to work with existing use cases
Familiar with the operations and functions of Nessus or security center management
Can assist and provide technical input to research, discover, implement hardware and software
Understands importance and fundamentals of logistics and evidence handling
Certified Ethical Hacker (CEH), GIAC Certified Incident Handler (GCIH), or relevant IT technology certification
Salary Range: $75,000 to $100,000
Akira's pay range for this position considers various factors including skills, years of experience, training, licenses, certifications, alignment with market data, and internal equity in the organization. This pay range estimate is a general guideline only and not a guarantee of compensation or salary, which Akira believes to be done in good faith in compliance with local laws. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. It is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.
General Description of Benefits
Akira offers its employees multiple options for medical plans (some with Health Savings Account), dental plans, and vision coverage, and a 401(k) plan with employer match. To promote work/life balance, Akira offers paid time off, including vacation and sick time, holidays, paid parental leave, military leave, bereavement leave, and jury duty leave. We also offer short and long-term disability benefits to protect employee income in the event of sickness or injury, life insurance, accidental death and dismemberment insurance, and critical illness insurance. Akira also offers tuition, training, and certification reimbursement for professional development and career advancement.
Akira regularly reviews our total rewards package to ensure our offerings remain competitive and reflect the values and needs expressed by our employees.
About Akira Technologies
Akira strives to meet and exceed the mission and objectives of US federal agencies. As a leading small business cloud modernization and data analytics services provider, we deliver trusted and highly differentiated solutions and technologies that serve the needs of our customers and citizens. Akira serves as a valued partner to essential government agencies across the intelligence, cyber, defense, civilian, and health markets. Every day, our employees deliver transformational outcomes, solving the most daunting challenges facing our customers.
Akira is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.
Auto-ApplyCyber Security Analyst
Information security analyst job in Virginia Beach, VA
Job DescriptionLocation: Virginia Beach VA Required Clearance: Secret - Top Secret SCI Certifications: DoD 8570.01-M in accordance with (IAW) DFARS ************ Baseline Certification, minimum IAT Level I, Level II or Level III depending on position hired to fill Required Education: Bachelor's degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information System, Information Technology, Computer, Electrical, or Electronics Engineering, Software Engineering, Computer Science, Mathematics with a concentration in Computer Science, or equivalent to above disciplines Required Experience: Two (2) Years for Level I, five (5) Years for Level II and ten (10) years for Level III
Position Description:
PingWind is seeking the right fit to join a team of Cyber professionals as they support critical functions to provide Cyber Security for the Navy's network. Depending on the position hired to fill, you will be ensuring the highest level of cyber security by implementing STIGS, performing scans using tools such as ACAS, and tracking/patching/mitigating vulnerability findings. Key goal is to ensure the warfighter can achieve their mission without the interference of adversaries and opportunistic hackers. Work is performed in support of Naval Surface Warfare Center (NSWC), DAHLGREN DIVISION in Virgina Beach as it conducts Research, Development, Test & Evaluation (RDT&E), analysis, systems engineering, integration, and certification of complex Department of Defense systems.
Primary Responsibilities:
Level: I Two (2) years and Level II: Five (5) years of full-time professional experience performing system hardening with demonstrated experience in the following areas:
• Performing STIG implementation;• Performing vulnerability assessments with the Assured Compliance Assessment Solution tool;• Experience with Security Management policy guidance and directives; and• Remediating vulnerability findings to include implementing vendor patches on both Linux and Windows Operating systems.Level III: Ten (10) years of full-time professional experience performing system hardening with demonstrated experience in the following areas:• Computer security, military system specifications, Security Management policy guidance and directives, DoD and cybersecurity policies;• Risk Management Framework (RMF) and the implementation of Cybersecurity and IA boundary defense techniques and various IA-enabled appliances. Examples of these appliances and applications are Firewalls, IDS, IPS, Switch/Routers, Cross Domain Solutions (CDS), EMASS and Endpoint Security Solution (ESS);• Performing STIG implementation;• Performing vulnerability assessments with the Assured Compliance Assessment Solution tool; and• Remediating vulnerability findings to include implementing vendor patches on both Linux and Windows Operating systems.
Required Qualifications:
• Secret - Top Secret SCI • DoD 8570.01-M in accordance with (IAW) DFARS ************ Baseline Certification, minimum IAT Level I, Level II or Level III depending on position hired to fill• Bachelor's degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information System, Information Technology, Computer, Electrical, or Electronics Engineering, Software Engineering, Computer Science, Mathematics with a concentration in Computer Science, or equivalent to above disciplines• Two (2) Years for Level I, five (5) Years for Level II and ten (10) years for Level III
Desired Qualifications/Experience:
• Navy experience a plus • DoD 8570.01-M CSSP certification• RMF experience
About PingWind
PingWind is focused on delivering outstanding services to the federal government. We have extensive experience in the fields of cybersecurity, development, IT infrastructure, supply chain management and other professional services such as system design and continuous improvement. PingWind is a VA CVE certified Service-Disabled Veteran-Owned Small Business (SDVOSB) with offices in Washington DC and Northern Virginia. ****************
Our benefits include:
• Paid Federal Holidays• Robust Health & Dental Insurance Options• 401k with matching• Paid vacation and sick leave• Continuing education assistance• Short Term / Long Term Disability & Life Insurance• Employee Assistance Program through Sun Life Financial EAP Guidance Resources
Veterans are encouraged to apply
PingWind, Inc. does not discriminate in employment opportunities, terms, and conditions of employment, or practices on the basis of race, age, gender, religious or political beliefs, national origin or heritage, disability, sexual orientation, or any characteristic protected by law.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Information Assurance Analyst
Information security analyst job in Norfolk, VA
GENERAL SUMMARY: Seeking full-time Network Engineer to join the Cyber Readiness Team supporting the Atlantic Surface Fleet in Norfolk, Virginia. An applicant that can demonstrate expert knowledge in the design, configuration, deployment and management of Aruba EdgeConnect SD-WAN solutions will fill this position. The candidate may be required to travel between 5-10% to assist forward-deployed units.
LOCATION: Norfolk, VA.
SPECIFIC DUTIES & RESPONSIBILITIES:
Provide SD-WAN orchestration and management using Aruba Orchestrator for provisioning, deployment, configuration, monitoring, and troubleshooting EdgeConnect SD-WAN solutions.
Manage user authentication, authorization, role-based access control, RADIUS/TACACS+, policy management, and captive portal using Aruba ClearPass Policy Manager (CPPM) and ClearPass Guest.
Deploy, provision, manage, and monitor Aruba Instant APs using Aruba Instant UI, Aruba Central and/or Aruba Mobility Controller capabilities.
DESIRED SKILLS AND ABILITIES:
HPE Aruba SD-WAN Certifications
Cisco Certified Network Associate (CCNA)
Experience with Aruba and/or Cisco wireless controllers, access points, switches and routers
Understanding of DoD Cybersecurity policies and programs
Experience implementing DISA Security Technical Implementation Guides (STIGs)
REQUIREMENTS:
In-depth knowledge of current SD-WAN concepts, industry standards, security, and best practices.
At least five years' hands-on experience with any SD-WAN technologies to include at least two years' experience with Aruba EdgeConnect SD-WAN solutions.
Hands-on experience using Aruba ClearPass Policy Manager (CPPM), ClearPass Guest, and Aruba Orchestrator in the management of EdgeConnect SD-WAN solutions.
Active Secret Security Clearance
Current US Passport
8570 Information Assurance Technician (IAT) level II or IAM/ISSM level I Certification
Bachelor's Degree or 5 years' experience in related field
Cyber Analyst Mid level w/ Secret clearance
Information security analyst job in Hampton, VA
Job Description
The Cyber Analyst, Mid-Level, applies expertise and work experience executing cyber risk assessments. The ideal candidate will provide a broad range of information assurance activities and has a strong knowledge of systems, operating environments, system security, and networking.
*This position requires onsite work
Duties
Determines system vulnerabilities and residual risk based on analysis of technical artifacts, interviews, and evaluation of current system state
Evaluates effectiveness of proposed mitigations
Contributes toward recommendations on technical/policy changes, processes and methodologies to assess and mitigate cybersecurity risk on information technology within the SCA's appointed authorization boundary
Works with other Cyber Analysts, Subject Matter Experts (SMEs), and SCARs to ensure that all cybersecurity analysis and cybersecurity risk assessments are completed with time and quality standards established by Division leadership and Task Lead
Supports program and projects with security and information assurance requirements elicitation based on customer and SME communication and independent research
Performs all other duties, as assigned
Requirements
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Systems required. Equivalent work experience may be substituted for Bachelor's degree. Master's degree preferred.
IAM Level II Certification in accordance with the Department of Defense (DoD) approved 8140 baseline certifications required
Must have at least 5 years of experience in cyber risk assessment in cyber risk assessment or experience with technologies utilized in AFNET or DoD systems
Proficiency with eMASS preferred
Must have familiarization with NIST SP 800-53, AFI 17-130, and DODI 8510.01
Strong planning, organization, and analytical skills, with attention to detail required
Must be able to take initiative and be self-motivated
Quick learner; passionate about technology and able to learn new technology areas as directed
Ability to elicit, identify, and research information assurance requirements and perform as a member of an assessment review team
Effective team player with good interpersonal skills
Must be able to work independently with minimal supervision
Excellent written and verbal communication skills required
Must be able to display professionalism in all situations
Knowledge in emerging technologies including cloud, AI and virtualization, networking, systems engineering, identity management, web technologies, system administration, and system security is preferred
This position requires onsite work. Must be flexible to be able to work in the office, as assigned.
Must have an active DoD security clearance
Information Assurance Analyst
Information security analyst job in Suffolk, VA
Falconwood is a woman-owned, veteran-owned company providing consultation and programmatic support to Department of Defense Information Technology (IT) initiatives and programs. We provide expert advice and consultation on a diverse range of IT subjects, focusing on acquisition, policy, cybersecurity, engineering, and process development.
The Information Assurance Analyst will be responsible for performing duties associated with development and review of RMF packages in support of the Commander, Naval Information Forces (NAVIFOR) N6 Directorate.
Responsibilities
The candidate will support Assessment and Authorization efforts for NAVIFOR N6 directorate and subordinate commands through:
Support program's authorization efforts throughout the Navy RMF process.
Track to ensure quality and timeliness of RMF package artifacts and deliverables.
Analyze general information assurance-related technical problems and provides recommendations and technical support in solving these problems.
Assess and supports implementation of solutions that meet network security requirements.
Review vulnerability/risk analyses of computer systems and applications during all phases of the system development life cycle.
Perform duties associated with development and review of RMF packages.
Support continuous improvement of strategies, processes, and procedures aligned with existing DoN Navy processes.
Ensure the necessary planning, outreach, execution, and dissemination of lessons learned/after action reports.
Qualifications
Clearance: TS/SCI clearance required (a current SSBI within the five-year scope).
Education: Bachelor of Science degree in Information Systems, Computer Science, Cybersecurity, Information Systems, Computer Engineering or related discipline.
Certifications: Information Assurance Certification (GIAC) - Security Leadership Certification (GSLC), Certified Information system Security Professional (CISSP), or Certified Information Security Manager (CISM).
Experience: At least one-year relevant experience performing Navy IA or cybersecurity functions.
Preferred:
Experience in an IT operational capacity (e.g., operations/project support, helpdesk).
Strong analytical, problem-solving, and project management skills.
Familiarity with U.S. Navy culture, processes, command organizations, and IT infrastructures.
Ability to analyze general information assurance-related technical problems and provides recommendations and technical support in solving these problems.
Be able to assess and support implementation of solutions that meet network security requirements.
Experience with vulnerability/risk analyses of computer systems and applications during all phases of the system development life cycle.
Advanced technical writing skills for developing documentation, reports, and training materials.
The candidate must be:
Familiar with the Navy RMF process.
Capable of performing effectively individually and as part of a team.
Technically savvy and possess excellent communication skills.
Have effective critical thinking and problem-solving skills.
Self-motivated and able to successfully deliver with minimal supervision.
Proficient in Microsoft applications such as Word, Excel, PowerPoint, and Outlook.
This position is fast paced and high demand that is a hybrid position (onsite and remote) in Suffolk, VA.
Limited to no travel is anticipated.
Pay Range
Base pay is $85,000-$95,00, subject to skill level, qualifications, and location.
Benefits Highlights: 401k, Tuition Reimbursement, Health/Dental/Vision Insurance, PTO, Federal Holidays, Performance Increases, Reserve Duty Compensation and more!
Auto-ApplyInformation Security Analyst II
Information security analyst job in Chesapeake, VA
Full-time Description
About Us:
eSimplicity is a modern digital services company that partners with government agencies to improve the lives and protect the well-being of all Americans, from veterans and service members to children, families, and seniors. Our engineers, designers, and strategists cut through complexity to create intuitive products and services that equip federal agencies with solutions to courageously transform today for a better tomorrow.
Responsibilities:
Support all matters related to Sensitive Compartmented Information (SCI) security within NIWDC programs and facilities.
Assist in the implementation of all compliant SCI security policies and procedures for classified materials, documents, and equipment.
Oversee and enforce compliance with DoD, Navy, and IC security policies (e.g., ICDs, DoDM 5105.21, and related directives).
Conduct security briefings, debriefings, indoctrinations, and training for personnel with access to SCI materials.
Coordinate and liaise with program leadership, EW operators, intelligence personnel, and higher headquarters on all matters involving security.
Monitor and ensure the physical security of SCIFs, secure IT systems, and related classified workspaces.
Investigate and report security violations, incidents, or potential compromises of classified information.
Provide security escorting for uncleared personnel as required.
Process and track incoming and outgoing Visit Authorization Requests.
Maintain personnel clearances and access records in coordination with security offices and government databases (DISS, Scattered Castles).
Advise leadership on risk management, threat awareness, and the integration of security into NIWDC operations.
Other administrative duties as assigned
Requirements
Required Qualifications:
A bachelor's degree in computer science, Information Systems, Engineering, Business, or other related scientific or technical discipline. With four (4) years of general information technology experience and at least two (2) years of specialized experience, a degree is not required.
Experience serving as a Special Security Officer (SSO) or working in a SCI security management role.
Familiarity with DoD and Intelligence Community security regulations, processes, and systems.
Strong organizational and problem-solving skills; ability to work under pressure and manage multiple security requirements simultaneously.
Excellent communication and interpersonal skills for working with leadership, operators, and intelligence/security teams.
Working knowledge of Navy Information Warfare.
Completion of SSO training courses or security management certification.
Active TS/SCI Clearance
Working Environment:
This position is 100% in-person in Chesapeake, VA remote or hybrid work is unavailable.
Benefits:
We offer highly competitive salaries and full healthcare benefits.
Equal Employment Opportunity:
eSimplicity is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, gender, age, status as a protected veteran, sexual orientation, gender identity, or status as a qualified individual with a disability.
Salary Description $76,500.00 - $90,000
Cyber Analyst, Sr. (Hampton, VA)
Information security analyst job in Hampton, VA
The Cyber Analyst, Senior, applies expertise and work experience executing cyber risk assessments to perform duties assigned by the Security Control Assessor (SCA) for the Department of the Air Force (DAF) Enterprise Authorizing Official (EAO) systems. The ideal candidate will provide a broad range of information assurance activities and possess a strong knowledge of systems, operating environments, system security, and networking.
**This position requires onsite work in Hampton, VA.
Job Duties
Determine system vulnerabilities and residual risk based on analysis of technical artifacts, interviews, and evaluation of current system state
Evaluate effectiveness of proposed mitigations
Provide recommendations to leadership on technical and policy changes, processes and methodologies to assess and mitigate cybersecurity risk on information systems
Work with other Cyber Analysts, SMEs and SCA-Rs to ensure that all cybersecurity analysis and cybersecurity risk assessments are completed within time and quality standards established by Division leadership and Operations Manager/Task Lead
Train new team members in the proper methods to perform assessment reviews and support development of training materials for field personnel (system owner personnel) to support effective and efficient RMF processes
Support program and projects with security and information assurance requirements elicitation based on customer and subject matter expert communication and independent research
Support Operations Manager/Task Lead with program execution, deliver program deliverables, and support strategic process development
Perform all other duties, as assigned
Requirements
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Systems, or related field required. Equivalent work experience may be substituted for degree requirement. Master's degree is preferred.
IAM Level II or III Certification in accordance with the DoD approved 8140 baseline certifications required
Must have at least 10 years of experience in cyber risk assessment or experience with technologies utilized in AFNET or DoD systems
Proficiency with eMASS preferred
Must have familiarization with NIST SP 800-53, AFI 17-130, and DODI 8510.01
Strong planning, organization, and analytical skills, with attention to detail required
Must be able to take initiative and be self-motivated
Must be a quick learner, passionate about technology and able to learn new technology areas, as directed
Must be able to elicit, identify, and research information assurance requirements and perform as a member of an assessment review team
Must be able to work effectively as a team member, as well as lead others to meet team and overall company goals and objectives
Must be able to work independently with minimal supervision
Excellent verbal and written communication skills and exceptional interpersonal skills required
Must be able to display professionalism in all situations
Must be able to implement, monitor and maintain quality control standards
Knowledge in emerging technologies, including cloud, AI and virtualization, networking, systems engineering, identity management, web technologies, system administration, and system security is preferred
This position requires onsite work. Must remain flexible to be able to work in the office, as assigned.
Active DoD security clearance required
Benefits Referentia offers a comprehensive set of benefits which includes health insurance coverage (medical, dental, vision, drug), paid time off, group term life insurance, accidental death & dismemberment insurance, income protection coverage, 401K retirement plan with employer matching, tuition reimbursement, and more.
We are proud to be an Equal Employment Opportunity Employer.
OERI - Critical Infrastructure and Data Transformation (CID) to Advance National Security (Research Faculty, Non Tenure Track )
Information security analyst job in Suffolk, VA
Posting Details Posting Details Job Title OERI - Critical Infrastructure and Data Transformation (CID) to Advance National Security (Research Faculty, Non Tenure Track ) Department RESILIENCE CLUSTER HIRE Number TBA Job Description The Office of Enterprise Research and Innovation (OERI) at Old Dominion University invites applicants for an annual 10-month position at Non-Tenure Track Assistant/Associate/Full Research Professor rank as part of a multi-position hiring cluster aiming for the Critical Infrastructure and Data Transformation to Advance National Security to begin in Fall 2026. This is an annual 12-month appointment that will begin July 25, 2026. The cluster, with faculty hires in School of Data Science, Batten College of Engineering and Technology and Office of Enterprise Research and Innovation, integrates interdisciplinary research in resilient infrastructure, infrastructure data transformation, and secure smart systems to address national security challenges in coastal regions. It explicitly addresses the Old Dominion University's Strategic Plan in research areas including Coastal Resilience and National Security. The research in this cluster will be supported by five interrelated, cross-cutting research domains, including Artificial Intelligence & Machine Learning, Computational & Data Science, Cybersecurity & Network Security, and Modeling & Simulation.
The primary responsibilities for this position are as follows:
Develop an interdisciplinary and externally funded research program in Critical Infrastructure and Data Transformation (CID) to Advance National Security.
Collaborate with faculty hired in this cluster and other faculty at Old Dominion University.
Opportunities for teaching graduate courses in the candidate's area of expertise will also be available with other departments in the BCET college or School of Data Science.
Position Type
FullTime
Type of Recruitment
General Public
Type of Recruitment
General Public
Minimum required education and/or special licenses, registrations, trainings, or certifications
A Ph.D. or equivalent terminal degree in engineering, computer science, or closely related field, complementary to the cluster's core areas of research, by May 2026.
Candidates for research assistant professor should have a record of conducting research in modeling and simulation as evidenced by peer reviewed publications.
Candidate for associate or full professor must have a demonstrated sustained track record of external federal funding and peer reviewed research publications.
Minimum required level and type of experience, knowledge, skills, and abilities
Candidate for associate research research professor must have a demonstrated sustained track record of external federal funding and peer reviewed research publications.
A plan for developing an externally funded research program at ODU with expressed interest in leveraging complementary research expertise at ODU.
Preferred Qualifications
Non-Tenure Track (Research Assistant/Associate Professor) Office of Enterprise Research and Innovation (OERI): is seeking for faculty with the expertise aligned with the Center for Secure and Intelligent Critical Systems Digital Twin for distributed energy resources, Modeling and Simulation for efficient data center infrastructure. Cyber Resilient data center.
Skill in working both independently and as part of an interdisciplinary team.
Ability to transfer existing projects and plans for acquiring and sustaining sponsored research.
Previous development and/or leadership experience with interdisciplinary, administrative, and/or academic initiatives.
Successful record of grant funding.
Conditions of Employment
Location
Suffolk, VA
Job Open Date
09/15/2025
Application Review Date
11/15/2025
Open Until Filled
Yes
Application Instructions
Interested candidates must complete the online application at************************************ including the following:
A cover letter describing your relevant qualifications and indicating the rank you would like to be considered for.
A curriculum vitae.
A statement of research interests.
Unofficial graduate transcripts.
Contact information for 3 professional references. At the appropriate time in the Search process, these individuals will be contacted by the Search Committee.
Applications should be submitted by November 15, 2025 for full consideration. The positions will remain open until filled. Questions about these positions should be directed to Dr. Murat Kuzlu (**************), Chair of the Critical Infrastructure and Data Transformation (CID) to Advance National Security Cluster Hire.
Telework Friendly
No
Reasonable Accommodation Request
If you are an individual with a disability and require reasonable accommodation, please contact the Division of Talent Management and Culture at *************.
Pay Transparency Nondiscrimination Provision
The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or consistent with contractor's legal duty to furnish information.
About the College
The Office of Enterprise Research and Innovation (OERI), within the Division of Research and Economic Development at Old Dominion University, unifies and focuses the advanced research of six distinct and diverse multidisciplinary applied research centers. From cybersecurity to maritime to modeling and simulation, OERI supports ODU's research infrastructure through innovation, workforce development, and industry engagement. OERI has evolved from the Virginia Modeling, Analysis, and Simulation Center (VMASC), which was established in 1997, and has been a secure and applied research and enterprise research facility of ODU. The continued success and growing recognition of VMASC as a global leader in the modeling and simulation sector has underscored the value of unifying research and commercial products. ***************************************************************
About the Department
Easy ApplySecurity Specialist Sr - C
Information security analyst job in Virginia Beach, VA
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position is contingent on contract award.
This position will be based at Virginia Beach, VA.
Responsibilities:
The Information System Security Specialist II provides cybersecurity compliance and accreditation support for Navy information systems under the Naval Surface Warfare Center Dahlgren Division (NSWCDD). The role ensures information systems meet all DoD cybersecurity and Risk Management Framework (RMF) requirements throughout the system lifecycle - from design and implementation through sustainment and re-accreditation.
The position supports both afloat and shore-based systems, working closely with engineers, system administrators, and program managers to identify vulnerabilities, develop mitigation strategies, and maintain Authorization to Operate (ATO) compliance.
Key Responsibilities
Accreditation & Compliance Support
* Develop, maintain, and update RMF documentation including Security Plans (SP), POA&Ms, Risk Assessments, and Continuous Monitoring Strategies.
* Support preparation, submission, and tracking of Assessment and Authorization (A&A) packages using tools such as eMASS.
* Review and apply DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs) to ensure systems meet DoD compliance standards.
* Participate in A&A and cybersecurity readiness reviews, providing technical recommendations to system owners.
* Ensure all assigned systems maintain an active Authorization to Operate (ATO) and adhere to DoD, NAVSEA, and SECNAV cybersecurity policies.
Cybersecurity Engineering and Risk Management
* Conduct risk assessments and vulnerability analyses using automated scanning and compliance tools (e.g., ACAS, STIG Viewer, SCAP, Security Content Automation Protocol).
* Identify, document, and assist in remediation of system vulnerabilities and security incidents.
* Contribute to cybersecurity architecture planning, ensuring implementation of secure configurations, least privilege, and zero-trust principles.
* Review and maintain Interconnection Security Agreements (ISAs) and other boundary documentation to ensure continuous authorization alignment.
* Support implementation of Defense-in-Depth and supply chain risk management strategies.
Operations & Maintenance
* Provide ongoing cybersecurity monitoring and auditing support for operational systems.
* Track and report system vulnerabilities in accordance with Navy's Vulnerability Remediation Asset Management (VRAM) system.
* Coordinate with system owners and administrators to ensure timely implementation of IAVAs, security patches, and configuration updates.
* Assist in incident response procedures and forensic investigations, documenting findings and mitigation actions
Job Requirements
Qualifications:
* Education: Bachelor's degree in Cybersecurity, Information Systems, Information Technology, Computer Science, or related discipline.
* Experience: Minimum 5 years of professional experience in information system security, accreditation, or RMF compliance roles (3 years acceptable with advanced degree).
Certifications:
* Must meet DoD 8570.01-M IAM Level II certification requirements (e.g., CAP, CISM, CISSP [Associate], GSLC, or CASP+ CE).
* Must comply with DFARS ************ Information Assurance Contractor Training and Certification.
Clearance: Active SECRET security clearance; ability to obtain and maintain TS/SCI as required.
Preferred Qualifications
* Hands-on experience with Navy or DoD RMF processes and A&A toolsets (eMASS, XACTA, VRAM, ACAS).
* Working knowledge of NIST SP 800-37, 800-53, 800-171, and CNSSI 1253 security control frameworks.
* Experience developing and maintaining security documentation and policy artifacts.
* Familiarity with network, system, and software engineering concepts relevant to DoD environments.
* Ability to brief technical content to government leadership and participate in CCB/IAWG meetings.
Desired Attributes
* Strong attention to detail and documentation discipline.
* Ability to work independently and collaboratively in a multi-contractor team environment.
* Analytical mindset with the ability to interpret complex cybersecurity compliance requirements and translate them into actionable tasks.
* Effective written and verbal communication skills for technical and executive audiences.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Virginia Beach, VA 23461 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Public Key Infrastructure (PKI) Auditor & Trainer/Information Systems Security Officer (ISSO)
Information security analyst job in Norfolk, VA
Input is currently seeking a Public Key Infrastructure (PKI) Auditor & Trainer/Information Systems Security Officer (ISSO) for a potential contract to assist the Department of the Navy (DON) Public Key Infrastructure (KPI) and Key Management Infrastructure (KMI) Services.
Location(s): Andrews AFB, MD; Norfolk, VA; San Diego, CA; and Pearl Harbor, HI
Key Responsibilities:
Maintain Naval Communications Security Material System (NCMS) PKI Registration Authority (RA) and Local RA (LRA) systems, perform operating system updates and validate machines are operating in accordance with Authority to Operate (ATO).
Coordinated with Navy Marine Corps Intranet (NMCI) for machine and network troubleshooting.
Maintain standard system security and disaster recovery plans and ensure implementation across the detachment.
Maintain enterprise architecture Standard Operating Procedures (SOPs) and documentation to include illustrations network topology, system access requirements and processes for obtaining material and replacement hardware and software.
Function as the NCMS PKI liaison to external LRA sites providing assistance and information pertaining to System access, network access, peripheral devices. Liaison support also includes working with the government Information System Security Managers (ISSM), and Information System Security Officers (ISSO) to achieve and maintain ATO requirements.
Perform Cybersecurity tasks to include validation of Assured Compliance Assessment System (ACAS) scans and patching, apply Security Technical Implementation Guides (STIGs).
Properly secure and maintain PKI archives until moved to long term storage facility.
Perform backups, validate scans, perform software updates as needed, and review workstation system logs.
Complete compliance audits in accordance with Joint Force Head Quarters Department of Defense Information Network (JFHQ-DODIN) PKI Audit requirements, audits drafts, reports, track audit Plan of Action and Milestones (POA&M), schedule audits and perform Training and Assist Visits (TAV).
Schedule, conduct and update PKI LRA, Trusted Agent (TA), System Administrator (SA), ISSO classroom training for newly appointed personnel through the Navy.
Qualifications:
Understanding of Department of Defense (DoD) Common Access Card (CAC) characteristics and CAC/Smart card operation and procedures to include CAC middleware and hardware, with a least one-year experience.
Knowledge of the principles, concepts, and methodology of Information Technology (IT) processing and a working knowledge of computer system architecture, performance characteristics and DoD and Service IT security policies with a least one-year experience.
Familiar with DoD 8520.02, Public Key Infrastructure and Public Key Enabling.
Skilled verbal and written communication techniques required to conduct meetings, and prepare reports and other correspondence
Must be able to work independently.
Possess analytical processing skills.
Possess DoD 8140 qualification of 461 Basic or 451 Intermediate upon first day of employment and continue to maintain extended training requirements as identified in SECNAV M-5239.2. Navy COOL - Navy Cyber Workforce (CWF) Program - CWF Model
JFHQ-DODIN PKI Auditor Qualified or served as Navy RA, LRA or PKI ISSO for 3 years.
SURTASS Security Analyst
Information security analyst job in Virginia Beach, VA
This position description is subject to change at any time as needed to meet the requirements of the program or company. Working across the globe, V2X builds smart solutions designed to integrate physical and digital infrastructure from base to battlefield. We bring 120 years of successful mission support to improve security, streamline logistics, and enhance readiness. Aligned around a shared purpose, our $3.9B company and 16,000 people work alongside our clients, here and abroad, to tackle their most complex challenges with integrity, respect, responsibility, and professionalism.
As we continue to grow, V2X intends to welcome the Surveillance Towed Array Sensor System (SURTASS) Operations and Maintenance (O&M) Technician Crewmembers and Field Support Team (FST) program to our extensive portfolio of similar Operations and Maintenance / Sustainment (O&M/S) programs. We offer growth opportunities, significant experience caring for personnel deployed in austere environments, and the operational advantage of 24/7 reach back support to technical SMEs, engineers, maintenance technicians, and operators on our other programs. A few of these programs include:
+ Fleet Systems Engineer Team (FSET) program located in key ports around the world, delivering support to the US Navy on complex C4ISR systems;
+ Mobile Sensors (COBRA KING) Radar and Communication O&M/S program, on which we have 25 years of service supporting several vessels which today includes the United States Naval Ship (USNS) Howard O. Lorenzen;
+ COBRA DANE Radar O&M/S program at Eareckson Air Station on Shemya Island, Alaska, which V2X has operated and maintained for over 50 years;
+ The Hughes Air Defense Radar (HADR) Sustainment program that includes SME and Depot support of two radars located in Taiwan;
+ Naval Computer and Telecommunications Area Master Station, Pacific (NCTAMS PAC) program and their efforts in facilitating key communication requirements from Hawaii and Australia; and
+ Japanese - Auxiliary Oceanographic Surveillance (J-AOS), on which we have a long history of providing key Field Support.
The SURTASS program provides an on-demand, mobile, and active / passive maritime surveillance capability in support of Joint and Naval Task Force commanders via towed acoustic sensor systems. The ships and installed SURTASS mission equipment are designed for extended duration deployment and independent operations in remote geographic areas; self-sufficiency in operations and maintenance is an important mission objective. It is intended that operations and maintenance be performed on board vessels and in depot maintenance facilities with the objective of maximizing operational readiness.
In performance of this mission, V2X is seeking an experienced Security Analyst to work at the Integrated Undersea Surveillance System (IUSS) Operations Support Center (IOSC) on Joint Expeditionary Base Little Creek - Fort Story, VA (JEBLCFS) 40-hours per week.
This position is contingent upon successful contract award to V2X.
#clearance
Responsibilities
Major Job Activities:
As a Security Analyst of the SURTASS Operation Center (SOC) and the SURTASS team, you will be responsible for the following:
+ COMSEC account management and performance.
+ Development, administration, inspection, and correction of deficiencies of SURTASS security programs, procedures, and accounts.
+ Training and qualifying COMSEC personnel.
+ Verification and accountability of classified material inventory.
+ Physical security compliance and verification.
+ Development and verification of Emergency Action Plans.
+ Conducting periodic audits and inspections of all SURTASS security programs.
+ Tracking, reporting, and assisting the SURTASS Vessels with Defense Courier Service (DCS) deliveries.
Qualifications
Required Qualifications:
+ In possession of, and able to maintain a valid United States driver's license.
+ Able to communicate effectively both orally and in writing.
+ Demonstrate ability to perform assigned taskings.
+ In possession of, and able to maintain a valid U.S. passport.
+ Successfully pass a pre-employment drug screening.
+ The ability to obtain and maintain company provided travel charge cards.
+ Ability to conduct short-term deployments / travel as required .
Security Clearance Requirement:
+ An active Department of Defense Top Secret level clearance with SCI access is required.
Desired Qualifications:
+ Associate's Degree or CNSSI 4011 Certificate or AQD GA7.
+ Graduate of Navy Communications Security (COMSEC) Manager School.
+ Three years of experience serving in a COMSEC Program. Experience serving as a COMSEC Manager is preferred.
+ Five years of experience with personnel, information, and physical security. Experience serving as a Physical Security Manager is preferred.
Benefits:
As an eligible V2X employee, you have the flexibility to choose from a wide variety of benefits that offer you and your family important health and financial protection. Benefits elections are made by employees at the time of hire (or as they become eligible), and during the annual Open Enrollment period. Benefits include:
+ Medical, Dental, and Vision
+ 401K Retirement Plan
+ Paid Holidays, which can be deferred if deployed / on missions.
+ Floating Holidays.
+ Receive training, priority advancement, and/or consideration for other V2X portfolio programs such as those identified above based on individual qualifications .
+ Deployment, Training and Mission Compensation Incentives / Bonuses.
Notice to Applicants:
To ensure V2X is prepared to start work immediately upon a contingent contract award o/a June 2026, V2X will be interviewing and selecting all program position candidates NLT 28 November 2025. While all interviews with applicants will remain confidential, the candidate selected for the position will receive a signed commitment letter based on a contingent contract award that also includes a confidentiality agreement. V2X will not disclose their selection to any third parties other than the appropriate U.S. Government party making the contract award decision.
At V2X, we are deeply committed to both equal employment opportunity, including protection for Veterans and individuals with disabilities, and fostering an inclusive and diverse workplace. We ensure all individuals are treated with fairness, respect, and dignity, recognizing the strength that comes from a workforce rich in diverse experiences, perspectives, and skills. This commitment, aligned with our core Vision and Values of Integrity, Respect, and Responsibility, allows us to leverage differences, encourage innovation, and expand our success in the global marketplace, ultimately enabling us to best serve our clients.
Information Security Analyst - Senior - NAVSEA - US Navy
Information security analyst job in Norfolk, VA
Requirements Minimum Education & Experience Requirements
Bachelor's degree or higher in Computer Science, Cybersecurity, Information Systems, Information Technology, or related field.
Minimum of seven (7) years of experience in an IT or cybersecurity role that includes:
Preparing DoD/Navy system accreditation documentation
Evaluating and validating system security configurations
Applying, configuring, and maintaining security controls across multiple environments
Supporting secure configuration management and compliance activities
Security Clearance Requirements
Must hold an Active Secret Security Clearance.
Salary Description 120,000 - 160,000
Industrial Security Analyst - Security Engineer
Information security analyst job in Virginia Beach, VA
Serco is looking for an Industrial Security Analyst - Security Engineer, at Langley Air Force Base in Hampton, Virginia. Bring your expertise and collaborative skills to make an impact towards our military defense by discovering your new role supporting this critical mission.
In this position you will:
Control all aspects of Physical, Personnel and Industrial Security at the ACC Distributed Training Center (DTC) located at Langley, AFB (with direction and/or support from SERCO Facility Security Officer (FSO) as well as Air Combat Command (ACC) and Air Force Logistics Command (AFLCMC/WNR): Contract Program Security Officer (CPSO) and Contract SCI Security Officer (CSSO) including the following.
Ensure all equipment used within the DTC (faxes, copiers, shredders, etc.) meet applicable standards and are approved, if required.
Ensure compliance with Emanations Security (TEMPEST) Technical Surveillance Countermeasures (TSCM) requirements.
Ensure systems authorization for government network systems required for CAF DTC Mission support such as but not limited to NIPRNET, SIPRNET and CV2.
Interpret and apply DTC Security Directives and Security Classification Guides as it applies to Cyber Security, Physical Security and Personnel Security.
Submit preconstruction plans and Fixed Facility Checklists (FFC) for approval.
Monitor all construction in the DTC to ensure it meets DODM 5205.07 Vol 3 and ICD 705 standard, prepare facility for accreditation, and ensure any modifications are authorized and meet all security requirements.
Conduct self-inspections.
When deficiencies are identified, prepare and implement corrective action plan and ensure correction timelines are met.
DTC POC for HHQ security reviews.
Development and maintain of the following documentation as a stand-alone DTC and ensure all assigned personnel are familiar with and follow procedures.
Standard Operating Procedures (SOP) - facility operating procedures
Emergency Action Plan (EAP) - for safeguarding classified material in emergency situations
Inspection Readiness Plan - plan for treaty compliance inspections
OPSEC Plan - plan that identifies critical information to determine if friendly actions can be observed by adversary intelligence systems and measures that eliminate or reduce adversary exploitation of friendly critical information.
Top Secret Control Officer (TSCO) - Responsible for all aspects of managing, controlling and accounting for Top Secret material. Currently there is no Top Secret material being used.
As TSCO, conduct 100% inventory annually or as required by the CPSO.
Identify DTC assigned employees and subcontractors for special accesses.
Report known or suspected security incidents to the GSSO/CPSO.
Perform technical reviews of incident reports and recommend appropriate corrective actions to the GSSO/CPSO.
When necessary, assist Higher Headquarters in conducting a damage assessment.
Monitor contractors to ensure they are following stated security requirements.
Develop, maintain, and conduct specific DTC security training program for all DTC assigned personnel.
Prepare, send, and receive of all visit requests for DTC activities. Verify that incoming visitors have the required security clearance necessary for discussions.
Be knowledgeable of export control and International Traffic in Arms Regulations (ITAR) in the event foreign nationals are allowed to visit the DTC.
Responsible for day-to-day control/maintenance of access control system (e.g., make sure it is working).
Identify and authorize persons for unescorted access as necessary.
Perform required security container combination changes along with associated paperwork.
Conduct random, no-notice, entry/exit inspections.
Monitor facility alarm system:
Respond to after-hours activations.
Conduct semi-annual test of alarm system.
Coordinate semi-annual timed response test with local Security Forces.
Report malfunctions and prepare plan for compensatory security measures for GSSO/CPSO, if required.
Prepare and receipt for classified material shipments entering/exiting the facility (to include mail, faxes, electronic data transfers).
Ensure all personnel follow written procedures to review classified holdings on a recurring basis and reduce inventories to the minimum necessary.
Maintain knowledge of the following:
DODI 5205.11 (Basic security rules for SAP)
DODM 5205.07 Vol 1-Vol 4 (DoD Manuals governing SAP)
DODM 5105.21 Vol 1- vol 4 (DoD Manuals governing SCI)
DD Form 254 (Contract Security Classification Specifications)
AFI 31-401 (Information Security) and AFI 31-501 (Personnel Security)
Top Secret Control procedures (if appointed as TSCO)
Special Access Program Nomination Process (SAPNP)
ICD 705 (Intelligence Community Directives governing SCIFs)
Conducts initial, annual, and other recurring security training for assigned personnel. May be required to develop training material and lesson plans that meet baseline security requirements.
Comply with industrial security standards.
Qualifications
To be successful in this role, you will have:
One of the following:
A High School diploma and 6 years of industrial security experience
A Bachelor's degree with a minimum of 4 years of industrial security experience
A Master's degree with a minimum of 2 years of industrial security experience
Active U.S. Department of Defense (DoD) Secret security clearance with the ability to obtain Top Secret / Sensitive Compartmented Information (TS/SCI) and Special Access Program (SAP) eligibility
Must be able to work on-site at Langley Air Force Base in Hampton, Virginia.
Must be able to travel as needed (up to 10% of the time)
Additional desired experience and skills:
Security Professional Education Development (SPēD) Certification
Active TS/SCI
If you are interested in supporting and working with our military and a passionate Serco team, submit your application now for immediate consideration. It only takes a few minutes and could change your career!
Company Overview
Serco Inc. (Serco) is the Americas division of Serco Group, plc. In North America, Serco's 9,000+ employees strive to make an impact every day across 100+ sites in the areas of Defense, Citizen Services, and Transportation. We help our clients deliver vital services more efficiently while increasing the satisfaction of their end customers. Serco serves every branch of the U.S. military, numerous U.S. Federal civilian agencies, the Intelligence Community, the Canadian government, state, provincial and local governments, and commercial clients. While your place may look a little different depending on your role, we know you will find yours here. Wherever you work and whatever you do, we invite you to discover your place in our world. Serco is a place you can count on and where you can make an impact because every contribution matters.
To review Serco benefits please visit: ************************************************************ If you require an accommodation with the application process please email: ******************** or call the HR Service Desk at ************, option 1. Please note, due to EEOC/OFCCP compliance, Serco is unable to accept resumes by email.
Candidates may be asked to present proof of identify during the selection process. If requested, this will require presentation of a government-issued I.D. (with photo) with name and address that match the information entered on the application. Serco will not take possession of or retain/store the information provided as proof of identity. For more information on how Serco uses your information, please see our Applicant Privacy Policy and Notice.
Serco does not accept unsolicited resumes through or from search firms or staffing agencies without being a contracted approved vendor. All unsolicited resumes will be considered the property of Serco and will not be obligated to pay a placement or contract fee. If you are interested in becoming an approved vendor at Serco, please email *********************.
Serco is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics.
Auto-ApplySystem Engineer, Physical Security
Information security analyst job in Chesapeake, VA
Tyto Athene is searching for an experienced **System Engineer, Physical Security** to support one of our DoD programs. This individual will be required to operate in a diverse security environment. **Responsibilities:** + Design, install, test and support of DoD physical security systems including, but not limited to, access control, closed-circuit television and intrusion detection.
+ Three (3) years' experience working with and validating engineering drawings in accordance with DoD engineering drawings practices.
+ Ability to troubleshoot LENEL manufactured security system and access control system equipment and software.
+ Provide security engineering support including review and response to technical specifications, scope of work, product selection, surveys with customer interview, design, technical writing and implementation of Electronic Security Systems.
+ Evaluate new COTS products, identifies form fit function (FFF) replacements for end of life (EOL) equipment, reviews maintenance trouble tickets and research solutions.
+ Maintains As-Builts to include inside and outside plant, fiber optic infrastructure, CCTV, IDS, ACS, head end and other related Electronic Security Systems.
+ Develop Installation Design Packages (IDP) that are SIPH compliant for Electronic Security Systems such as PACS, IDS/PIDS, VMS, and other related low voltage systems for highly sensitive areas such as SCIF.
**Qualifications**
**Required:**
+ Ability to obtain a CI polygraph
+ Bachelor's degree in electrical or mechanical engineering and a minimum seven (7) years' experience; OR a minimum of ten (10) years' experience if candidate does not have a degree
+ CompTIA Security+ certified
+ LENEL Certified Expert (LCE)
**Clearance:**
+ Active TS/SCI clearance is required. Candidates must have this clearance in order to be considered.
**About Tyto Athene**
**Compensation:**
+ Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $130,000-$140,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.
**Benefits:**
+ Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.
Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains-Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT-empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide.
At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto?
Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.
Submit a Referral (*****************************************************************************************************************************************
**Location** _US-VA-Chesapeake_
**ID** _2025-1600_
**Category** _Information Technology_
**Position Type** _Full-Time_
Information Security Analyst (Filling more than one position)
Information security analyst job in Newport News, VA
Working Title Information Security Analyst (Filling more than one position) Role Title Information Technology Specialist II Position Number 00719 FLSA Exempt Appointment Type Full Time Type of Posting General Public Is Sensitive Position? No If Sensitive Position, please paste statement Designated Personnel Yes Responsible Employee
This position is designated as a "responsible employee" who has the authority to redress sexual violence, who has the duty to report incidents of sexual violence or other student misconduct, or who a student could reasonably believe has this authority or duty.
If Designated Personnel, please paste statement Statement of Economic Interest No If Statement of Economic Interest, please paste statement Is this a restricted position subject to availability of funding? If Restricted Position, please paste statement Departmental Objective
To inspire and foster partnerships that focus on innovative solutions for ubiquitous access and use of information services to support educational and cultural opportunities that benefit the CNU community.
Purpose of the Position
The Information Security Analyst is responsible for implementing the campus' information security program to include reviewing security plans, and role-based training requirements, operating security tools, scanners, tools and responding to security alerts.
Knowledge, Skills, and Abilities Related to Position
* Knowledge of general concepts of information security best practices; IT Governance, Risk Management, and Compliance (GRC) for example NIST CSF, NIST SP 800-39 and NIST SP 800-30
* Knowledge of NIST SP 800-53 rev 5 security controls and the Risk Management Framework (e.g. NIST SP 800-37)
* Knowledge of vulnerability scanning and threat mitigation tools such as Microsoft Defender, Tenable Security Center / Nessus, Burp Suite and Trivy
* Knowledge of centralized log management tools such as Splunk, Graylog, Microsoft Sentinel, AWS CloudTrail
* Knowledge of common vulnerability management frameworks such as CIS or STIGs
* Knowledge of security concepts such as Least Privilege; and Separation of Duties
* Ability to think critically, analyze risk, consider possible solutions, and make recommendations
* Ability to communicate effectively both verbally and in writing with diverse groups of organizations and people
* Ability to develop relationships with and provide guidance to all levels of management regarding employee system access
* Willingness to be very flexible, ability to maintain the highest professional standards, and competence to be accurate, thorough, and productive with all work
* Foundational knowledge of computer networking (IPv4 and IPv6), ports and protocols, traffic flow
* Understanding of system administration for both on-premises and cloud systems
* Understanding of defense-in-depth, and common security elements
* Familiarity with Infrastructure as Code (e.g., Terraform, Ansible, Puppet, Chef) and automated pipelines (e.g., GitLab)
* Understanding of the IT Incident Response processes
* Knowledge of regulations such as FERPA, GLBA, PCI
* Knowledge of Palo Alto firewalls and IDS/IPS concepts
* Demonstrated understanding of technical, engineering, and programmatic capabilities related to information systems and/or subsystems
* Familiarity with programming and query languages, such as Python, SQL, KQL
Education, Experience, Licensure, Certification Required
Education:
* High school graduate or equivalent education/experience that equates to a high school diploma.
Experience:
* Experience creating notional and technical diagrams
* Experience in an information security environment
* Experience developing and customizing security-related scripts
Additional Consideration(s)
Education:
* BA or BS in Information Security, Information Assurance, Computer Science, or related equivalent professional experience
* Possession of a current information security certificate / credential, such as a CISSP, CISM, or similar.
Experience:
* Professional experience with information security to include managing systems security architecture, design, installation, operational planning, and risk remediation activities on an enterprise level
* Experience in information security performing IT/technical audits, security vulnerability assessments, system configuration verifications, and security-related assignments
* Experience working with centralized logging solutions and vulnerability scanning tools
* Experience with vulnerability scanning solutions, including Tenable Security Center
* Experience working in a higher education environment
* Experience in installing security software and documenting security issues
Salary Information Starting at $68,534, Commensurate with Education and Experience CNU Information
This position includes Commonwealth of Virginia and Christopher Newport University employee benefits. CNU offers a comprehensive benefits package to include retirement plans, medical, dental, vision, and a variety of other options. Available leave includes vacation, sick time, personal time, and volunteer/service leave. State employees are eligible for discounted travel, banking, legal and retail services, among others. To view more information about our benefits, please visit *****************************
Role Code 39112 Conditions of Employment
* This is a classified position. New and returning classified employees are required to complete a 12-month probationary period
* Selected candidate must attend a 2-day New Employee Orientation Program
Is this position telework eligible? Yes Telework Eligibility Disclaimer
This position is eligible for periodic telework as determined by the department. Eligibility is not guaranteed, and is subject to supervisor approval. Eligibility will depend on the likelihood of the employee's success in a telework arrangement and the supervisor's ability to manage telework. Departments and/or Human Resources may modify or revoke eligibility at any time. Employees will be required to sign a Telework Agreement.
Physical/Cognitive Requirements
Light Lifting (less than 20 lbs.) Essential Moderate Lifting (20-50 lbs.) Essential Heavy Lifting (more than 50 lbs.) Marginal Pushing/Pulling Essential Standing Essential Sitting Essential Bending Non-Applicable Walking Marginal Climbing Non-Applicable Reaching Non-Applicable Repetitive Motion Non-Applicable List other physical requirements
Emotional Demands
Fast Pace Essential Average Pace Essential Multiple Priorities Essential Intense Customer Interaction Essential Multiple Stimuli Essential Frequency Changes Essential
Mental/Sensory Demands
Memory Essential Reasoning Essential Hearing Essential Reading Essential Analyzing Essential Logic Essential Verbal Communication Essential Written Communication Essential List other mental/sensory requirements
Posting Detail Information
Posting Number PS1180P Number of Vacancies 2 Posting Date 12/11/2025 Closing Date 12/26/2025 Open Until Filled No Special Instructions to Applicants
CNU will only accept online applications through the jobs.cnu.edu website. Online applications must be received by midnight on the closing date indicated in a job announcement. Faxed, emailed, hand-delivered or mailed applications and attachments will NOT be accepted. Applicants are welcome to complete an online application by using computers located in the Office of Human Resources. Address: CNU North - 321 Hiden Boulevard, Suite 101, Newport News, VA 23606. Public computers are also available in nearby libraries and at the Virginia Employment Commission. Address: 600 Butler Farm Road, Hampton, VA 23666 (M-F 9am-4:30pm).
In order to be considered for this position, your application must provide evidence of experience and/or education supporting the requirements outlined in the posting. We encourage you to be clear and specific when describing your experience. *Responses to supplemental questions alone are not considered evidence of experience and/or education.
Quick Link for Direct Access to Posting *********************************** Advertising Text EEO/Diversity Statement(s)
Christopher Newport University, an EO Employer, is fully Committed to Access and Opportunity.
Notice of Non-Discrimination & Title IX Policy Statement
Reasonable Accommodation Request
Christopher Newport University (CNU) will make a reasonable effort to accommodate persons with disabilities in the application and/or interview process. Persons with disabilities who require accommodation should contact the CNU Human Resources Office by calling **************.
Alternative Hiring Process
In support of the Commonwealth's commitment to inclusion, we are encouraging individuals with disabilities to apply through the Commonwealth Alternative Hiring Process. To be considered for this opportunity, applicants will need to provide their Certificate of Disability (COD) provided by a Certified Rehabilitation Counselor within the Department for Aging & Rehabilitative Services
(DARS). Veterans are encouraged to answer Veteran status questions and submit their disability documentation, if applicable, to DARS to get their Certificate of Disability. If you need to get a Certificate of Disability, use this link: ********************************************** or call DARS at ************.
Background Check
Applicant finalists are required to complete a CNU sponsored background check. After accepting employment, individuals are required to complete a USCIS Form I-9 (employment eligibility verification) and present documentation from the USCIS List of Acceptable Documents that establishes both their identity and employment authorization to work in the United States. The provided documents will be verified through the Department of Homeland Security E-Verify website.
Cyber Security Analyst
Information security analyst job in Virginia Beach, VA
Location: Virginia Beach VA Required Clearance: Secret - Top Secret SCI Certifications: DoD 8570.01-M in accordance with (IAW) DFARS ************ Baseline Certification, minimum IAT Level I, Level II or Level III depending on position hired to fill Required Education: Bachelor's degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information System, Information Technology, Computer, Electrical, or Electronics Engineering, Software Engineering, Computer Science, Mathematics with a concentration in Computer Science, or equivalent to above disciplines Required Experience: Two (2) Years for Level I, five (5) Years for Level II and ten (10) years for Level III
Position Description:
PingWind is seeking the right fit to join a team of Cyber professionals as they support critical functions to provide Cyber Security for the Navy's network. Depending on the position hired to fill, you will be ensuring the highest level of cyber security by implementing STIGS, performing scans using tools such as ACAS, and tracking/patching/mitigating vulnerability findings. Key goal is to ensure the warfighter can achieve their mission without the interference of adversaries and opportunistic hackers. Work is performed in support of Naval Surface Warfare Center (NSWC), DAHLGREN DIVISION in Virgina Beach as it conducts Research, Development, Test & Evaluation (RDT&E), analysis, systems engineering, integration, and certification of complex Department of Defense systems.
Primary Responsibilities:
Level: I Two (2) years and Level II: Five (5) years of full-time professional experience performing system hardening with demonstrated experience in the following areas:
• Performing STIG implementation;• Performing vulnerability assessments with the Assured Compliance Assessment Solution tool;• Experience with Security Management policy guidance and directives; and• Remediating vulnerability findings to include implementing vendor patches on both Linux and Windows Operating systems.Level III: Ten (10) years of full-time professional experience performing system hardening with demonstrated experience in the following areas:• Computer security, military system specifications, Security Management policy guidance and directives, DoD and cybersecurity policies;• Risk Management Framework (RMF) and the implementation of Cybersecurity and IA boundary defense techniques and various IA-enabled appliances. Examples of these appliances and applications are Firewalls, IDS, IPS, Switch/Routers, Cross Domain Solutions (CDS), EMASS and Endpoint Security Solution (ESS);• Performing STIG implementation;• Performing vulnerability assessments with the Assured Compliance Assessment Solution tool; and• Remediating vulnerability findings to include implementing vendor patches on both Linux and Windows Operating systems.
Required Qualifications:
• Secret - Top Secret SCI • DoD 8570.01-M in accordance with (IAW) DFARS ************ Baseline Certification, minimum IAT Level I, Level II or Level III depending on position hired to fill• Bachelor's degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information System, Information Technology, Computer, Electrical, or Electronics Engineering, Software Engineering, Computer Science, Mathematics with a concentration in Computer Science, or equivalent to above disciplines• Two (2) Years for Level I, five (5) Years for Level II and ten (10) years for Level III
Desired Qualifications/Experience:
• Navy experience a plus • DoD 8570.01-M CSSP certification• RMF experience
About PingWind
PingWind is focused on delivering outstanding services to the federal government. We have extensive experience in the fields of cybersecurity, development, IT infrastructure, supply chain management and other professional services such as system design and continuous improvement. PingWind is a VA CVE certified Service-Disabled Veteran-Owned Small Business (SDVOSB) with offices in Washington DC and Northern Virginia. ****************
Our benefits include:
• Paid Federal Holidays• Robust Health & Dental Insurance Options• 401k with matching• Paid vacation and sick leave• Continuing education assistance• Short Term / Long Term Disability & Life Insurance• Employee Assistance Program through Sun Life Financial EAP Guidance Resources
Veterans are encouraged to apply
PingWind, Inc. does not discriminate in employment opportunities, terms, and conditions of employment, or practices on the basis of race, age, gender, religious or political beliefs, national origin or heritage, disability, sexual orientation, or any characteristic protected by law.
Auto-Apply